Skip to content
Think Crew Support

Think Crew Support

Answers to all of your questions

Account Management

3
  • Subscription Plans and Billing
  • Managing Your Subscription
  • Password Management

Collaboration Features

2
  • Team Collaboration Overview
  • Managing User Permissions

Devices & Internet

3
  • Using Think Crew on Mobile Devices
  • Running Think Crew from Your Desktop
  • Offline Access and Synchronization

Internationalization

4
  • Language Settings and Preferences
  • Available Languages and Translations
  • Setting Measurement Preferences
  • Date and Time Format Customization

Overview

14
  • Introduction to Think Crew
  • System Requirements and Browser Compatibility
  • Creating Your Account
  • Quick Start Guide
  • Navigating the Interface
  • Customizing Your User Profile
  • Your User Page
  • Search
  • Alerts
  • Understanding the Dashboard
  • Permissions Page
  • Keyboard Shortcuts and Time-saving Tips
  • Feature Requests
  • Report an Issue

Progress Reports

1
  • Progress Reports

Projects

6
  • Creating a New Project
  • Projects Page Overview
  • Managing Project Settings
  • Deleting Projects
  • Adding Users to Projects
  • Setting User Permissions

Schedule Page

44
  • Schedules Page Overview
  • Managing Panes (Tab Pane System)
  • Managing Schedule Scenarios
  • Creating and Managing Calendar Events
  • Printing Schedules
  • Schedule Settings
  • Boards
    • Board Views (Strips, Calendar)
    • Working with Boards
    • Recycle Bin
    • Drag and Drop Scheduling
    • Find & Replace
    • Sort & Add Days
    • Updating Multiple Breakdowns (Multi-Select)
  • Breakdowns
    • Breakdown Fundamentals
    • Creating Breakdown Sheets
    • Adding Data to a Breakdown
    • Linking Breakdowns to Scenes
    • Manually Setting a Strip’s Color
  • Categories & Elements
    • Category & Element Fundamentals
    • Managing Elements
    • Managing Categories
    • Working with the Elements Pane
  • Day Out of Days
    • Day Out of Days Overview
    • Where is the Day Out of Days
    • Day Out of Days Views (Grid, Calendar)
    • Selecting a Category and Board
    • Setting a Date Range
    • Day Out of Days Settings
    • Day Out of Days Filtering
    • Managing Totals Columns
    • Solo Elements
    • Show Only Working Elements
    • Changing the Schedule in the Day Out of Days (Moving Columns)
  • Designs
    • Designs Overview
    • Creating a Design
    • Creating a Strip
    • Design a Strip
    • Design Strip Menu Bar – Table
    • Design Strip Menu Bar – Categories
    • Design Strip Menu Bar – Field
    • Design Strip Menu Bar – Format
    • Strip Preview
    • Creating a Palette
    • Sharing Designs, Strips & Palettes

Schedules

6
  • Create a Schedule
  • Duplicating Schedules
  • Import & Export Schedules
  • Moving a Schedule to Another Project
  • Deleting Schedules
  • Revising Scripts

Script Page

5
  • Script Editor Basics
  • Working with Scenes
  • Script Views (Scene, Breakdown, Script)
  • Managing Scene Breakdowns
  • Renumbering Scenes

Scripts

7
  • Importing Scripts
  • Managing a Script
  • Moving a Script to Another Project
  • Scripts Page Overview
  • Deleting Scripts
  • Automatic Scene Descriptions
  • How to Import Scripts from Scriptation

Site Info

3
  • Change Log
  • AI Scene Descriptions: Data Security and Privacy
  • Think Crew Security Overview

Troubleshooting

4
  • Common Issues and Solutions
  • Contacting Support
  • System Status and Maintenance Information
  • How to Hard-Reload Think Crew
View Categories
  • Home
  • Docs
  • Site Info
  • Think Crew Security Overview

Think Crew Security Overview

3 min read

Think Crew maintains enterprise-grade security through a multi-layered approach across all components of our infrastructure. Our platform leverages industry-leading hosting providers and implements security best practices to protect your data and ensure platform reliability.

Security Architecture #

HTTPS Encryption #

All Think Crew services use HTTPS encryption to secure data transmission between clients and servers. This industry-standard protocol ensures that all communications are encrypted in transit, protecting against eavesdropping and man-in-the-middle attacks.

Multi-Tier Infrastructure Security #

Think Crew’s security is built on three foundational layers:

  • Frontend Security (Dreamhost)
  • Backend API Security (Heroku)
  • Database Security (ObjectRocket)

Each layer implements specific security controls appropriate to its function while working together to create a comprehensive security posture.

Frontend Security (Dreamhost) #

Core Security Features #

Dreamhost provides our security certificate, automated backups, DDoS protection, and malware scanning for all hosted websites. The platform automatically installs and renews SSL certificates powered by Sectigo DV.

Web Application Protection #

Dreamhost provides our Web Application Firewall (WAF) that protects websites from common attacks, such as SQL injection and cross-site scripting (XSS). Additionally, they use Lua-resty-waf, an open-source project that combines Nginx services, Lua interpreter, and JIT compiler for advanced protection.

Additional Security Measures #

  • DreamShield: DreamHost’s own malware remover, made by the company’s in-house security engineers, which performs weekly scans and provides malware removal
  • Domain Privacy: A default free security service that hides personal information from the public WHOIS database
  • Multi-Factor Authentication: Support for Google Authenticator app or YubiKey protection for login credentials

Infrastructure Security #

DreamHost provides robust digital security tools, including SSL, daily data backups, and web application firewalls. The platform maintains a 100% uptime guarantee backed by compensation for any downtime.

Backend API Security (Heroku) #

Platform-Level Security #

Heroku applies security best practices and manages our platform security, with security controls at every layer from physical to application, isolating customer applications and data. The platform is designed to rapidly deploy security updates without customer interaction or service interruption.

Data Protection & Compliance #

Heroku maintains extensive compliance certifications:

  • ISO 27001/27017/27018: Certified against widely recognized international information security standards that specify security management best practices and comprehensive security controls
  • SOC 1, 2, and 3: Independent auditing of IT controls and security measures around availability, confidentiality and security of customer data
  • HIPAA & PCI Compliance: Heroku Shield provides additional security features for building HIPAA or PCI compliant applications

Access Control & Authentication #

Heroku offers Single Sign-On (SSO) integration with identity providers and mandatory Multi-Factor Authentication (MFA) as an effective way to increase protection against common threats like phishing attacks, credential stuffing, and account takeovers.

Infrastructure & Backup Protection #

Our API is automatically backed up as part of the deployment process on our secure, access controlled, and redundant storage. The platform utilizes ISO 27001 and FISMA certified data centers managed by Amazon with extensive physical security controls.

Private Network Isolation #

Heroku Private Spaces provide network isolated environments with additional trust controls including keystroke logging for production access auditing, space-level logging, encryption at rest for ephemeral data, and strict TLS enforcement.

Database Security (ObjectRocket) #

Core Security Controls #

Our ObjectRocket clusters come with SSL encryption, ACLs/IP whitelisting, user authentication, and container-based isolation. The platform also offers encryption at rest as an optional setting for customers that want an extra layer of security.

High Availability & Data Protection #

ObjectRocket offers sharded and replica MongoDB instances in 3 member replica sets for data redundancy and fault tolerance. Each instance is protected by replication, and should any component fail, the replica set architecture provides primary level high availability and fault tolerance.

Backup & Recovery #

Backups are taken daily with a default retention period of two weeks. ObjectRocket retains instance data for up to 24 hours in the event an instance was accidentally deleted, providing additional protection against data loss.

Performance & Isolation #

ObjectRocket uses single-tenant clusters with dedicated containers running on high performance hardware with PCI Express flash storage, ensuring both security isolation and optimal performance.

Shared Responsibility Model #

Think Crew’s security follows industry-standard shared responsibility principles:

Think Crew’s Responsibilities #

  • Maintaining secure infrastructure configurations
  • Implementing security updates and patches
  • Monitoring for security threats and vulnerabilities
  • Ensuring data backup and recovery capabilities
  • Managing access controls and authentication systems

User Responsibilities #

  • Using strong, unique passwords
  • Following secure coding practices in applications
  • Reporting suspected security incidents promptly
  • Keeping local systems and browsers updated

Incident Response #

In the event of a security concern:

  1. Report immediately to our support team at support@thinkcrew.com
  2. Document any suspicious activity or potential security indicators
  3. Preserve any relevant evidence
  4. Follow any additional guidance provided by our team

Compliance & Certifications #

Through our hosting partners, Think Crew benefits from multiple compliance frameworks:

  • ISO 27001/27017/27018 (Information Security Management)
  • SOC 1, 2, and 3 (Service Organization Controls)
  • PCI DSS (Payment Card Industry Data Security Standard)
  • GDPR (General Data Protection Regulation) compliance support

Regular Security Practices #

Continuous Monitoring #

  • 24/7/365 infrastructure monitoring across all tiers
  • Automated security scanning and threat detection
  • Regular security assessments and penetration testing

Updates & Maintenance #

  • Automatic security patches and updates
  • Regular infrastructure security reviews
  • Proactive vulnerability management

Data Protection #

  • Encryption in transit (HTTPS/TLS)
  • Regular automated backups with secure storage
  • Data redundancy and fault tolerance

Contact Information #

For security-related questions or to report security concerns: support@thinkcrew.com

Updated on July 8, 2025
access-control

What are your Feelings

  • Happy
  • Normal
  • Sad

Share This Article :

  • Facebook
  • X
  • LinkedIn
  • Pinterest
AI Scene Descriptions: Data Security and PrivacyChange Log

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Table of Contents
  • Security Architecture
    • HTTPS Encryption
    • Multi-Tier Infrastructure Security
  • Frontend Security (Dreamhost)
    • Core Security Features
    • Web Application Protection
    • Additional Security Measures
    • Infrastructure Security
  • Backend API Security (Heroku)
    • Platform-Level Security
    • Data Protection & Compliance
    • Access Control & Authentication
    • Infrastructure & Backup Protection
    • Private Network Isolation
  • Database Security (ObjectRocket)
    • Core Security Controls
    • High Availability & Data Protection
    • Backup & Recovery
    • Performance & Isolation
  • Shared Responsibility Model
    • Think Crew's Responsibilities
    • User Responsibilities
  • Incident Response
  • Compliance & Certifications
  • Regular Security Practices
    • Continuous Monitoring
    • Updates & Maintenance
    • Data Protection
  • Contact Information
  • Facebook
  • YouTube
  • Instagram
  • Bluesky
Proudly powered by WordPress